AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2025-38653

HIGH · CVSS 7.8 EPSS 0.17%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2025-08-22 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.8. It affects Linux.

CVE
CVE-2025-38653
Severity
HIGH
CVSS
7.8
EPSS
0.17%
Linux

Original NVD Description

In the Linux kernel, the following vulnerability has been resolved: proc: use the same treatment to check proc_lseek as ones for proc_read_iter et.al Check pde->proc_ops->proc_lseek directly may cause UAF in rmmod scenario. It's a gap in proc_reg_open() after commit 654b33ada4ab("proc: fix UAF in proc_get_inode()"). Followed by AI Viro's suggestion, fix it in same manner.

Related CVEs

Other vulnerabilities affecting the same vendor(s)